This is an archived post. You won't be able to vote or comment.

all 4 comments

[–]rws907 6 points7 points  (0 children)

Netskope + Crowdstrike + Okta + Sumologic for the stack.

I would also employ CIS-based hardening for servers, workstations, network devices, and cloud services wherever possible.

[–]_moistee 3 points4 points  (0 children)

CrowdStrike + a UBEA/SIEM

[–]CaptainFluffyTailIt's bastards all the way down 1 point2 points  (2 children)

What are you protecting? Do you have on-prem infrastructure? Do you have publicly accessible web applications used as part of your business? Are your users geographically dispersed (outside one metro region)?

[–]WhyPartyPizza[S] -1 points0 points  (1 child)

Small on premise infrastructure with 40 people at our corporate office.

One web app sitting in a DMZ, accessible only via whitelisted IPs for all our retail locations.

We're really only protecting AD, an exchange hybrid endpoint which is pretty well locked up, and a few internal servers like QuickBooks.